Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-0057
Description:XMLHTTP control in Microsoft XML Core Services 2.6 and later does not properly handle IE Security Zone settings, which allows remote attackers to read arbitrary files by specifying a local file as an XML Data Source.
Test IDs: 1.3.6.1.4.1.25623.1.0.10866  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-0057
BugTraq ID: 3699
http://www.securityfocus.com/bid/3699
Bugtraq: 20011214 MSIE6 can read local files (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2001-12/0152.html
Bugtraq: 20020212 Update on the MS02-005 patch, holes still remain (Google Search)
http://marc.info/?l=bugtraq&m=101366383408821&w=2
Microsoft Security Bulletin: MS02-008
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-008
http://www.osvdb.org/3032
XForce ISS Database: ie-xmlhttp-redirect(7712)
https://exchange.xforce.ibmcloud.com/vulnerabilities/7712




© 1998-2025 E-Soft Inc. All rights reserved.